Barnes & Noble

Name of Entity
Barnes & Noble
Organization Type
Businesses-Retail/Merchant - Including Online Retail
Address

New York, NY
United States

Description
PIN pad devices used to process credit and debit card information in stores were compromised.  The breach was discovered around September 14 during maintenance and inspection of the devices.  Anyone who used a credit or debit card at a Barnes & Noble may have been affected by a sophisticated criminal effort to steal that information.  Names, payment card account numbers, and PINs may have been exposed.  Barnes & Noble removed all PIN pads. Fewer than 1% of the inspected PIN pads had been affected.UPDATE (10/24/2012): A total of 63 Barnes and Noble stores in nine states had at least one compromised PIN pad device.  Malicious code was installed on the PIN pads.UPDATE (09/05/2013): A federal judge ruled that customers failed to show that their personal information was stolen in the data breach.
Date of Breach
01/01/2012